You can't reproduce it because I deleted it within minutes of being
notified, just like I did last time.
We've set the offending file chattr +i so this particular malware will
probably not work anymore. But the attack vector still remains
somewhere in wordpress.
On Fri, Dec 23, 2022 at 6:36 PM Sean Greenslade <sean(a)seangreenslade.com> wrote:
On Fri, Dec 23, 2022 at 06:19:42PM -0800, Jake via sudo-discuss wrote:
if you go to
https://omnicommons.org/blog/calendar/
you see a "sign up for our newsletter: Email address ______________ Subscribe"
banner, partially covering up Ashley, 26 (who is online now) but not covering
her boobs.
It's been like this for weeks apparently (I just noticed) and we don't know
what's going on.
Does anyone know wordpress and IT security and can take a look and figure out
what's going wrong in there?
I can't reproduce the issue. I just tried it on desktop and mobile with
three different browswers. I don't see Ashley, or any other signs of
compromise / weird scripts / unexpected 3rd party net requests.
Anyone else? Maybe all my computers / browsers are just weird?
--Sean
_______________________________________________
discuss mailing list
discuss(a)lists.omnicommons.org
https://omnicommons.org/lists/listinfo/discuss